Video summary
How I Would Learn Cybersecurity If I Could Start Over In 2026
Main summary
Key takeaways
Main ideas / concepts conveyed
- Cybersecurity is a career path Rick says he successfully entered after engineering work, and he frames his advice as the steps he would repeat if he started over.
- Credentialing matters for career entry and advancement, and he recommends a structured certification path through ISC².
- Learning cybersecurity requires immersion in current information and terminology, plus the mindset that early confusion is normal.
- For long-term job access and credibility, he positions CISSP as a “premium” certification that many employers seek.
Methodology / step-by-step instructions
1) Start with the Certified in Cybersecurity (CC) certification (ISC²)
Why start here
- It is an entry-level certification.
- It is part of a path toward the internationally recognized “premium” certification in cybersecurity (CISSP).
Who it fits
- People changing careers
- Recent college graduates
- IT professionals aiming to break into cybersecurity, improve skills, and increase earning potential
What the exam covers (5 domains)
- Security principles
- Core concepts such as the CIA triad (and referenced “opposite of that” / likely control concepts)
- Security controls
- Cybersecurity frameworks
- Risk and other fundamentals
- Business continuity, disaster recovery, and incident response
- Access control concepts
- Includes references to RBAC and types of access/security controls
- Presented as important for keeping data private
- Also described as a building block for later certifications
- Network security
- Security operations
Exam format and scoring
- 2 hours
- 100 questions
- 70% required to pass
- Computer adaptive testing (CAT)
- The computer adapts question difficulty/focus based on your prior answers
- If you miss or struggle in a domain, the system may ask more questions in that domain
2) Immerse yourself in cybersecurity (learn the language + keep up with news)
How to immerse
- Consume information and news regularly via:
- YouTube channels (he suggests subscribing to his channel)
- Hacker News
- SecurityWeek
Why immersion works (his reasoning)
- You’ll repeatedly encounter cybersecurity terms and language.
- When you don’t understand something, you should:
- Look it up
- Try to understand what it means and how it’s used
- He emphasizes a learning principle:
- Like learning tennis, cybersecurity will feel awkward and unfamiliar at first
- With practice, time, and not giving up, you improve (even if you never become “great” immediately)
3) After gaining some experience, pursue CISSP (ISC²)
Why CISSP next
- CISSP is described as the premium certification in cybersecurity.
- He claims it is commonly required for many cybersecurity jobs.
- He cites CyberSeek: about 82,000 US jobs require CISSP (as stated in the video).
- He also claims it is associated with high pay and industry respect.
CISSP exam domains (8)
- Security and risk management
- Risk processes, identifying and mitigating risk
- Asset security
- Protecting data/information and also physical assets
- Security architecture and engineering
- Architect and engineer systems for confidentiality, integrity, and availability
- Maintain CIA-triad balance, and ensure authorized access
- Communication and network security
- Identity and access management
- Security assessment and testing
- How to test systems for security
- Security operations
- Software development security
Exam format and scoring
- 3 hours
- 100–150 questions (variable)
- If you do well, testing may stop at about 100; he personally took 150
- 70% passing threshold
- Uses computer adaptive testing similarly to the CC exam (recent answers affect what comes next)
Additional learning resource
- He directs viewers to a link in the description: “11 essentials for passing the CISSP exam”
- He claims these “11 essentials” also apply to passing the CC exam (Certified in Cybersecurity)
Speakers / sources featured (identified)
Speaker
- Dr. Rick Sturvant (also referred to as Rick, host; “Rick Talks Tech”)
Organizations / referenced sources
- ISC² (publisher of Certified in Cybersecurity (CC) and CISSP)
- CyberSeek (cited for job requirement numbers)
- Hacker News (news source recommended)
- SecurityWeek (news source recommended)
- YouTube (platform recommended; includes his channel)